The McAfee Mobile Research Team has detected 25 apps infected with XAMALICIOUS malware and some were also available at the Google Play Games Store. Although Google has removed 13 of these apps, but if you have already installed them, it will remain a threat to you as long as you stay on your smartphone. In such a situation, we will advise you to remove the apps mentioned below immediately from your smartphone.
XAMALICIOUS is a dangerous Android backdoor, which takes advantage of the XAMARIN Open-Sound Mobile App Platform. Once the app gets accessibility privilege, it quietly communicates with the command-and-control server. Subsequently, the server downloads another payload on the phone, taking complete control on the malware device. This control can lead to fraud activity, such as clicking on scam filled advertisements, installing apps and other financial activity and all this can be done without the consent of the smartphone user.
The 13 apps mentioned below have been removed from the Google Play Games, on which you have to keep an eye on. Some of these apps have been downloaded more than 1 lakh times.
- Very important horoscope for Android
- Three-d pores and skin essayist for pe minecra
- Emblem Maker Professional
- Auto click on Repeater
- Depend Simple Calorie Calculator
- Tone quantity extender
- Letterlink
- Common Calculator
- Step Keeper: Simple Pedometer
- Monitor your peace
- Tone quantity booster
- Astrological Navigator: Day by Day Horoscope & Tarot
- Numerology: Personal Horoscope & Number Predictions
The McAfee Mobile Research Team states that the use of XAMARIN Framework has kept malware makers active for a long time. The process of creating framework for APK files serves as a packer, which hides malicious code. In addition, the Malware Code Writer has employed various offskuction techniques and custom encryption to communicate with the command-end-control server and to remove the data.
Although these apps are no longer available on Google Play Games, it is necessary to keep in mind that if you have already downloaded them, Google cannot remove them from your phone. Therefore, to ensure the safety of your device, you should check the full list of your apps.
In a statement to BGR, Google spokesperson, Ad Fernandez, assured that “Google Play Protect has been designed to protect users from malware, whether it is its source. Users who have downloaded any of these apps will receive warnings and the app will be uninterrupted by the app. On trying to install, warnings will be triggered and will block Android download. “